Overview
An additional security setting can be enabled to force every User on the Admin side to enter in a code sent to their email and/or mobile phone on their profile page.
Setup
This feature requires the Twilio service to first be enabled on the Addons section in Company settings page and for the account to be verified.
Once the Addon service for Twilio is turned on and configured properly, go to the Security tab in Company Settings and toggle on the MFA Login Settings option.
How it Works
The initial time a User or staff member logs into the DaySmart Recreation account with their user name or email or password, instead of directly getting logged into the system, they will be prompted to request a code which will be sent to their email address that is associated to their User account.
The following screen allows the user to enter in the Verification code they received in their email and add a mobile phone number to use for future logins.
You must still enter the verification code sent to the email in order to login. If you click to add the mobile phone, you will be able to add your digits below the verification line. Once you have finished adding your code plus phone number if desired, press Verify. If you need to completely start over and relogin as someone else, the "Start Over" button will bring you back to the login screen.
The verification code will only be active for 10 minutes. If you have surpassed this time limit you will need to request a new code to be sent. If you enter in the wrong code an error message will appear. If your code is correct, the User will be able to log into DaySmart Recreation.
If a mobile phone has been added to the account, the login screen changes to appear with more options to receive your verification code. You can have one emailed, texted, or receive the code via a phone call.